CVE-2025-33195: Buffer Overflow
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause unexpected memory buffer operations. A successful exploit of this vulnerability might lead to data tampering, denial of service, or escalation of privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33195?
CVE-2025-33195 is categorized as a high severity vulnerability due to its potential for data tampering and privilege escalation.
How do I fix CVE-2025-33195?
To mitigate CVE-2025-33195, update the SROOT firmware on the NVIDIA DGX Spark GB10 to the latest version provided by NVIDIA.
What can an attacker achieve by exploiting CVE-2025-33195?
Exploiting CVE-2025-33195 can allow an attacker to perform data tampering, cause denial of service, or escalate privileges on the affected system.
Which systems are affected by CVE-2025-33195?
CVE-2025-33195 affects NVIDIA DGX Spark GB10 systems that utilize the vulnerable SROOT firmware.
Is there a known workaround for CVE-2025-33195 until a fix is applied?
Currently, there is no documented workaround for CVE-2025-33195, so updating the firmware is the recommended approach.